PHP(PHP:Hypertext Preprocessor,PHP:超文本预处理器)是PHP Group和开放源代码社区共同维护的一种开源的通用计算机脚本语言。该语言主要用于Web开发,支持多种数据库及操作系统。 PHP中的PHAR 404和PHAR 403错误页面存在输入验证漏洞,该漏洞源于程序没有过滤用户的输入。远程攻击者可利用该漏洞进行劫持用户浏览器会话、植入传播恶意代码等网络攻击,可能会造成用户账号被盗取、用户隐私泄露等危害。以下版本受到影响:PHP 5.6.36之前的版本,7.0.27之前的7
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-10545 | PHP 安全漏洞 | |
| CVE-2018-10546 | PHP 安全漏洞 | |
| CVE-2018-10548 | PHP 安全漏洞 | |
| CVE-2018-10549 | PHP 安全漏洞 | |
| CVE-2018-9845 | Etherpad Lite 安全漏洞 | |
| CVE-2018-10534 | GNU Binutils Binary File Descriptor库安全漏洞 | |
| CVE-2018-10535 | GNU Binutils Binary File Descriptor库安全漏洞 | |
| CVE-2018-10536 | WavPack 安全漏洞 | |
| CVE-2018-10537 | WavPack W64解析器组件安全漏洞 | |
| CVE-2018-10538 | WavPack 安全漏洞 | |
| CVE-2018-10539 | WavPack 安全漏洞 | |
| CVE-2018-10540 | WavPack 安全漏洞 | |
| CVE-2018-10528 | LibRaw 缓冲区错误漏洞 | |
| CVE-2018-10529 | LibRaw 安全漏洞 |
No comments yet